
CVE-2022-24086
An attacker could place HTML containing executable JavaScript inside element attributes. This markup becomes unescaped, causing arbitrary markup to…

An attacker could place HTML containing executable JavaScript inside element attributes. This markup becomes unescaped, causing arbitrary markup to…

FreePBX 未认证SQL注入导致远程代码执行,FreePBX 15 (低于 15.0.66)、16 (低于 16.0.89)、17 (低于 17.0.3)。该漏洞位于商业化“endpoint”模块中,因对用户输入过滤不严,允许未认证的攻击者绕过管理员权限,执行SQL注入,并最终实现远程代码执行


A vulnerability scanner that detects CVE-2021-21972 vulnerabilities.

A vulnerability scanner that detects CVE-2020-14883 vulnerabilities.

Scanner for the Mini Shai-Hulud npm/PyPI supply chain worm (NHS CC-4781 · CVE-2026-45321). Detects gh-token-monitor persistence, payload artefacts,…

CVE-2021-44228

This vulnerability may allow an unauthenticated attacker with network access to the BIG-IP system through the management port and/or self IP…

Detection for CVE-2025-42944

Incorrect implementation of an authentication algorithm in Ivanti vTM other than versions 22.2R1 or 22.7R2 allows a remote unauthenticated attacker…

A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead to sshd to handle some…



WordPress REST API SQLi to RCE PoC (CVE-2026-63030 & CVE-2026-60137)

cPanel CVE-2026-41940 nuclear.x86 Security Audit & Cleanup Script

batch scan CVE-2022-1388
